We are seeking an experienced Senior Cyber Security Engineer to join a Cyber Security team on an interim contract. This role will provide senior technical expertise to support and optimise an outsourced Security Operations Centre (SOC), ensuring the organisation maximises its investment in security technologies while strengthening its cyber defence capabilities.
The successful candidate will have extensive hands-on experience with CrowdStrike Falcon and Splunk Enterprise Security, with the ability to enhance security monitoring, improve incident response processes, support threat hunting activities, and mentor internal team members.
Key Responsibilities
Lead the deployment, configuration, administration, and ongoing optimisation of the CrowdStrike Falcon platform, ensuring endpoint security policies are effectively implemented and maintained.
Work closely with the outsourced Security Operations Centre to develop and enhance Splunk dashboards, alerts, data models, and monitoring capabilities, enabling the identification and investigation of sophisticated cyber threats.
Act as the senior technical escalation point for complex and high-priority cyber security incidents, utilising Endpoint Detection and Response (EDR) and Security Information and Event Management (SIEM) technologies to support rapid investigation, containment, and remediation.
Design, develop, and improve Security Orchestration, Automation and Response (SOAR) workflows to reduce manual effort, improve operational efficiency, and accelerate incident response.
Conduct proactive threat hunting activities using advanced search techniques and security telemetry to identify malicious activity that may have evaded automated detection.
Support vulnerability assessment activities and contribute to security testing initiatives, including exposure to penetration testing and web application security assessments.
Develop and maintain cyber security policies, standards, and technical documentation to support governance and operational best practice.
Provide technical guidance, mentoring, and knowledge transfer to existing cyber security team members, strengthening internal capability across CrowdStrike, Splunk, and security operations.
Collaborate with internal stakeholders and external partners to continuously improve cyber security monitoring, detection, and response capabilities.
Maintain awareness of emerging cyber threats, vulnerabilities, and industry best practices to ensure security controls remain effective and up to date.
Essential Requirements
Applicants must have a minimum of five years' experience working in a dedicated Cyber Security Engineering or SOC Tier 3 environment.
Extensive hands-on experience administering and supporting CrowdStrike Falcon, including Falcon Prevent, Falcon Insight, and Falcon Discover, is essential.
Strong experience working with Splunk Enterprise Security, including writing complex Search Processing Language (SPL) queries, developing dashboards, alerts, reports, and managing security data.
Experience supporting Security Operations Centres, incident response, endpoint detection and response, security monitoring, and threat hunting activities.
Excellent understanding of network protocols, cyber attack methodologies, security monitoring techniques, and the MITRE ATT&CK Framework.
Good knowledge of cloud security principles across Microsoft Azure and/or AWS environments.
Strong analytical, troubleshooting, communication, and stakeholder management skills with the ability to work independently and manage multiple priorities.
Desirable
Experience performing vulnerability assessments using recognised vulnerability management tools.
Exposure to penetration testing and web application security testing.
Experience creating and maintaining cyber security policies, standards, and governance documentation.
Professional cyber security certifications such as CompTIA Security+, Network+, CySA+, GSEC, CISSP, GCIH, GCIA, or CCSP.
CrowdStrike certifications including CCFA, CCFR, or CCSE.
Splunk Certified Cybersecurity Defense Engineer certification Only candidates based in UK and eligible to work in UK are allowed
All Job Ads are subject to GrabJobs’s Terms of Service. We allow users to flag postings that may be in violation of those terms. Job Ads may also be flagged by GrabJobs moderation team. However, no moderation system is perfect, and flagging a posting does not ensure that it will be removed.
Be the first to receive the latest Others Full-Time Jobs in the UK.
Setup your job alert:
By activating job alerts, I agree to GrabJobs Terms & Privacy Policy. I can unsubscribe to job alerts anytime.
Skip
GrabJobs is the no1 job portal in the UK, connecting you to thousands of jobs fast!
Find the best jobs in the UK, apply in 1 click and get a job today!